AWS Certificate Manager
Copy link to the page “AWS Certificate Manager”Imports the certificate into ACM. Services that use the certificate's ARN get the new one on reimport.
What happens
- The appliance connects to AWS Certificate Manager through AWS API on port 443.
- The certificate is imported into ACM. On renewal it is reimported on the same ARN. If it fails: Rollback can delete a new certificate that is not in use. A reimport can only be reversed with the previous key, which ACM does not hand out.
- Verification: the package checks that the certificate exists in ACM.
Technical details
- Connection
- The package runs on the appliance, which connects over HTTPS to AWS API, port 443. No agent is installed.
- You need
- IAM user or role with acm:ImportCertificate, acm:DescribeCertificate, acm:ListCertificates, acm:GetCertificate and acm:DeleteCertificate (API Key + Secret). Rollback uses the last two.
- Actions
- Discovery, Installation, Verification, Rollback
- Packages
-
aws-acm-api